SLES

SLES 12 — ctdb — multiple vulnerabilities (20 CVEs) — patch and remediation guide — diagnosis and fix on SLES 12

SLES 12 — ctdb — multiple vulnerabilities (20 CVEs) — patch and remediation guide

🔴 Critical   ⏱ 15–90 min  Last verified: 15 May 2025 Affected versions: SLES 12 📖 ~4 min read  •  Source: SUSE advisory SUSE-SU-2025:03603-1 (see also SUSE bugzilla) Related CVEs: CVE-2025-10230 CVE-2020-1472 CVE-2021-44142 CVE-2009-1886 CVE-2023-34966 CVE-2021-20251 CVE-2022-37966 CVE-2022-38023  +12 more Upstream summary: A flaw was found in Samba, in the front-end WINS hook handling: NetBIOS […]

Read more
SLES 15 — zvbi — multiple vulnerabilities (5 CVEs) — patch and remediation guide — diagnosis and fix on SLES 15

SLES 15 — zvbi — multiple vulnerabilities (5 CVEs) — patch and remediation guide

🟠 High   ⏱ 15–60 min  Last verified: 15 May 2025 Affected versions: SLES 15 📖 ~4 min read  •  Source: SUSE advisory SUSE-SU-2025:0979-1 (see also SUSE bugzilla) Related CVEs: CVE-2025-2176 CVE-2025-2177 CVE-2025-2173 CVE-2025-2174 CVE-2025-2175 Upstream summary: A vulnerability classified as critical has been found in libzvbi up to 0.2.43. This affects the function vbi_capture_sim_load_caption […]

Read more
SLES 15 — OpenIPMI — vulnerability — patch and remediation guide — diagnosis and fix on SLES 15

SLES 15 — OpenIPMI — vulnerability — patch and remediation guide

🟡 Medium   ⏱ 10–30 min  Last verified: 13 May 2025 Affected versions: SLES 15 📖 ~4 min read  •  Source: SUSE advisory RHSA-2024:8037 (see also SUSE bugzilla) Related CVEs: CVE-2024-42934 Upstream summary: OpenIPMI before 2.0.36 has an out-of-bounds array access (for authentication type) in the ipmi_sim simulator, resulting in denial of service or (with […]

Read more
SLES 15 — emacs — multiple vulnerabilities (17 CVEs) — patch and remediation guide — diagnosis and fix on SLES 15

SLES 15 — emacs — multiple vulnerabilities (17 CVEs) — patch and remediation guide

🟠 High   ⏱ 15–60 min  Last verified: 13 May 2025 Affected versions: SLES 15 📖 ~4 min read  •  Source: SUSE advisory RHSA-2025:1915 (see also SUSE bugzilla) Related CVEs: CVE-2025-1244 CVE-2024-53920 CVE-2024-39331 CVE-2022-48337 CVE-2022-48339 CVE-2022-48338 CVE-2022-45939 CVE-2024-30203  +9 more Upstream summary: A command injection flaw was found in the text editor Emacs. It could […]

Read more
SLES 15 — libxml2 — multiple vulnerabilities (20 CVEs) — patch and remediation guide — diagnosis and fix on SLES 15

SLES 15 — libxml2 — multiple vulnerabilities (20 CVEs) — patch and remediation guide

🟠 High   ⏱ 15–60 min  Last verified: 9 May 2025 Affected versions: SLES 15 📖 ~4 min read  •  Source: SUSE advisory RHSA-2025:12447 (see also SUSE bugzilla) Related CVEs: CVE-2025-7425 CVE-2025-49794 CVE-2025-49795 CVE-2025-49796 CVE-2025-6021 CVE-2024-56171 CVE-2022-49043 CVE-2024-40896  +12 more Upstream summary: A flaw was found in libxslt where the attribute type, atype, flags are […]

Read more
SLES 12 — jq — multiple vulnerabilities (3 CVEs) — patch and remediation guide — diagnosis and fix on SLES 12

SLES 12 — jq — multiple vulnerabilities (3 CVEs) — patch and remediation guide

🟡 Medium   ⏱ 10–30 min  Last verified: 7 May 2025 Affected versions: SLES 12 📖 ~4 min read  •  Source: SUSE advisory RHSA-2025:10585 (see also SUSE bugzilla) Related CVEs: CVE-2025-48060 CVE-2024-23337 CVE-2025-9403 Upstream summary: jq is a command-line JSON processor. In versions up to and including 1.7.1, a heap-buffer-overflow is present in function `jv_string_vfmt` […]

Read more
SLES 15 — nvidia-container-toolkit — multiple vulnerabilities (7 CVEs) — patch and remediation guide — diagnosis and fix on SLES 15

SLES 15 — nvidia-container-toolkit — multiple vulnerabilities (7 CVEs) — patch and remediation guide

🔴 Critical   ⏱ 15–90 min  Last verified: 6 May 2025 Affected versions: SLES 15 📖 ~4 min read  •  Source: SUSE advisory SUSE-SU-2025:4187-1 (see also SUSE bugzilla) Related CVEs: CVE-2025-23266 CVE-2024-0135 CVE-2024-0136 CVE-2025-23359 CVE-2025-23267 CVE-2024-0137 CVE-2024-0134 Upstream summary: NVIDIA Container Toolkit for all platforms contains a vulnerability in some hooks used to initialize the […]

Read more
SLES 12 — python-Werkzeug — multiple vulnerabilities (3 CVEs) — patch and remediation guide — diagnosis and fix on SLES 12

SLES 12 — python-Werkzeug — multiple vulnerabilities (3 CVEs) — patch and remediation guide

🟠 High   ⏱ 15–60 min  Last verified: 3 May 2025 Affected versions: SLES 12 📖 ~4 min read  •  Source: SUSE advisory SUSE-SU-2024:1572-1 (see also SUSE bugzilla) Related CVEs: CVE-2024-34069 CVE-2023-25577 CVE-2019-14806 Upstream summary: Werkzeug is a comprehensive WSGI web application library. The debugger in affected versions of Werkzeug can allow an attacker to […]

Read more
SLES 12 — sssd — multiple vulnerabilities (14 CVEs) — patch and remediation guide — diagnosis and fix on SLES 12

SLES 12 — sssd — multiple vulnerabilities (14 CVEs) — patch and remediation guide

🟠 High   ⏱ 15–60 min  Last verified: 2 May 2025 Affected versions: SLES 12 📖 ~4 min read  •  Source: SUSE advisory RHSA-2025:19610 (see also SUSE bugzilla) Related CVEs: CVE-2025-11561 CVE-2023-3758 CVE-2022-4254 CVE-2021-3621 CVE-2010-4341 CVE-2011-1758 CVE-2013-0219 CVE-2013-0220  +6 more Upstream summary: A flaw was found in the integration of Active Directory and the System […]

Read more
SLES 12 — ft2demos — multiple vulnerabilities (20 CVEs) — patch and remediation guide — diagnosis and fix on SLES 12

SLES 12 — ft2demos — multiple vulnerabilities (20 CVEs) — patch and remediation guide

🔴 Critical   ⏱ 15–90 min  Last verified: 2 May 2025 Affected versions: SLES 12 📖 ~4 min read  •  Source: SUSE advisory SUSE-CU-2019:721-1 (see also SUSE bugzilla) Related CVEs: CVE-2017-7864 CVE-2025-27363 CVE-2017-8287 CVE-2020-15999 CVE-2025-23022 CVE-2009-0946 CVE-2010-2497 CVE-2010-2805  +12 more Upstream summary: FreeType 2 before 2017-02-02 has an out-of-bounds write caused by a heap-based buffer […]

Read more
CHAT